Issues
- 1
session being reset during the oauth dance, resulting in `csrf_detected` error
#183 opened by davetron5000 - 3
Callback URI
#180 opened by reiz - 2
undefined method `bytesize' for Hash
#89 opened by eignerchris - 1
CVE-2020-36599 (Critical), CVE-2015-9284 (High)
#178 opened by wimpog - 4
Keeping Github Releases in sync with gem releases?
#176 opened by epugh - 3
- 0
Coveralls check is failing
#170 opened by BobbyMcWho - 19
redirect_uri parameter given to authorization endpoint is not identical to the one given to the token endpoint
#93 opened by mulka - 6
- 1
- 1
request.env['omniauth.origin'] always nil
#137 opened by ramonpm - 5
- 1
Error when no refresh_token is available
#162 opened by espen - 0
Duplicate redirect_uri in Callback phase
#161 opened by dombarnes - 7
I get the response that I need but its considered as authentication Failure
#159 opened by laptopmutia - 5
- 16
omniauth: (google_login) Authentication failure! csrf_detected (only Safari)
#155 opened by gingerlime - 1
@agrobbin @sferik Could you review this, if you still have an interest in the issue?
#154 opened by Noip1 - 2
Well, seems it's working now after I upgrade to the latest version. The state parameter can be parsed as I expect.
#151 opened by Drblack101 - 2
state parameter change to hashing code.
#150 opened by Drblack101 - 5
Possible issue with mirroring back the query params that were passed from authorization server
#141 opened by menisy - 4
How do I fix the Authentication failure! csrf_detected: OmniAuth::Strategies::OAuth2::CallbackError, csrf_detected | CSRF detected ?
#140 opened by bigos - 0
- 2
undefined method `expired?' for nil:NilClass
#138 opened by kinitawowi - 2
- 1
PKCE Support
#130 opened by jessedoyle - 2
http call and response leading to invalid_credentials error with familysearch strategy
#102 opened by genlighten - 3
Update omniauth from 1.9 for security reasons
#127 opened by gchapim - 0
- 0
Custom Strategy - OmniAuth::NoSessionError
#120 opened by tardoe - 0
- 0
Got an error on `deep_symbolize` after authentication
#118 opened by shioimm - 1
Where Does The Subclass Go?
#116 opened by perlmunger - 2
- 3
Faraday::ConnectionFailed execution expired
#106 opened - 1
Support for gem is stopped
#108 opened by ngoral - 2
- 41
- 1
CSRF protection bypassed.
#101 opened by ehsahil - 1
Documentation fot Posting with the access token
#104 opened by bsylvain - 2
Support rails 5
#99 opened by maximveksler - 0
Redirect URI Required not Optional
#98 opened by vpfaulkner - 2
Compatibility with omniauth >=1.3?
#87 opened by nikdavis - 0
- 0
handling invalid_grant errors
#84 opened by rgarcia - 0
- 8
- 0
Really weird CSRF issue...
#78 opened by bill-transue - 1
- 1